Unable to get memberOf (OpenLDAP, using memberof overlay)

Phil Pishioneri pgp at pSu.edu
Wed Dec 11 14:55:06 EST 2019

On 2019/12/11 1:48 PM, Stevens, M wrote:
> I'm not clear on the why ldapsearch returns memberOf if the "+" filter is
> specified and the idp dataconnector does not, but it does work in the idp
> data connector if I explicitly call it out:
> <ReturnAttributes>* memberOf</ReturnAttributes>

Have you looked at your slapd log and verified that slapd sees the same
attribute list from both ldapsearch and IdP searches? (The value for
'attr' in SRCH log entries, e.g., "SRCH attr=* +".)


